1. Host Discovery
1. Netdiscover
netdiscover -i (network interface name) (example: eth0 or tun0)
netdiscover -i eth0
netdiscover -r ip/242. ARP
arp -a 3. Host Discovery using Nmap
ARP Scan
nmap -sn -PR [Target IP Address]
# -sn used to disable port scanningICMP Echo and ICMP Echo Sweep Scan
nmap -sn -PE [Target IP Address]
nmap -sn -PE [Target Range of IP Addresses]ICMP Timestamp Ping scan
nmap -sn -PP [Target IP Address]ICMP Address Mask Scan
TCP Syn Ping Scan
TCP ACK Ping Scan
UDP Ping Scan
4. Host Discovery DC on AD
Last updated